Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
gsundeep
searching Neon…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
5 ms
·
1.
▲
by
gsundeep
1y ago
Agreed, I think adding guardrails to this would be really useful to ensure the AI only has limited permissions to these services (or asking for some sort of confirmation before making potentially dangerous tool calls).
2.
▲
by
gsundeep
1y ago
Currently we are only recording which tools were requested by the MCP client. We don't store details of the executed tool, neither the arguments nor the response. Currently we are not open source but we are considering that. Thanks for
3.
▲
by
gsundeep
1y ago
We are thinking of open sourcing it, the current codebase requires Cloudflare Workers so it will take some changes to make it more generic. Thank you for the feedback!
4.
▲
Show HN: MCP Jetpack – The easiest way to get started with MCP in Cursor
(mcpjetpack.com)
17 points
by
gsundeep
1y ago
|
10 comments
5.
▲
by
gsundeep
1y ago
We’ll prioritize adding support for this client - thanks!
6.
▲
by
gsundeep
1y ago
We'll soon be adding the ability to have multiple models perform the scan in parallel, so any attack would have to bypass all of the models.
7.
▲
by
gsundeep
1y ago
Thanks for your comment - MCP Defender sits between the MCP client and server, it doesn't need to worry about the protocols that the server communicates with to other services.
8.
▲
by
gsundeep
1y ago
This is certainly a valid concern. We'll soon be adding the ability to have multiple models perform the scan in parallel, so any attack would have to bypass all of the models.
9.
▲
by
gsundeep
1y ago
With the default signatures, source code would not be treated as malicious. However, you can add custom signatures and detect whatever you'd like. We'll soon be adding deterministic rules as well to complement the LLM based ones.
10.
▲
by
gsundeep
1y ago
MCP Defender sits between the MCP client and server. If you use Cursor for example, MCP Defender rewrites your Cursor MCP config file so that all MCP servers point to the MCP Defender proxy. So the tool calls are scanned before they make it
11.
▲
by
gsundeep
1y ago
This is really interesting, I'll check it out. At least in its current form this seems like it would take some effort to setup - we're focusing heavily on making MCP Defender easy to setup in less than a minute and then forgetting
12.
▲
by
gsundeep
1y ago
We used Cursor + MCP tools like Cloudflare, Linear and Github to build and deploy a lot of MCP Defender, so I think the value is real. I had the same thought about it feeling like an antivirus/firewall many of us ran decades ago. Those
13.
▲
by
gsundeep
1y ago
I had the same thought while building this, but I really feel a tool like this is needed as MCP has a lot of surface area for attacks. Any MCP server that gets hacked exposes all users of that MCP server to serious security risk, unless the
14.
▲
by
gsundeep
1y ago
While Cursor and other apps can include security checks in their system prompt, MCP Defender provides an extra unified layer of security across all apps. Also, we're going to be adding the ability to have multiple models perform the sc
15.
▲
by
gsundeep
1y ago
We'll be adding the ability to run MCP Defender through a local LLM soon, so using that approach no data will leave your computer to perform a scan. Yes, there is a delay for MCP exchange, but I imagine that most MCP calls in the futur
16.
▲
by
gsundeep
1y ago
We're planning to add deterministic rules on top of the current LLM based ones
17.
▲
by
gsundeep
1y ago
Thanks! Yes - which client are you using? We'll add support for it
18.
▲
Show HN: MCP Defender – OSS AI Firewall for Protecting MCP in Cursor/Claude etc
(mcpdefender.com)
64 points
by
gsundeep
1y ago
|
40 comments
19.
▲
by
gsundeep
2y ago
Not yet, but that sounds like a great idea as watch apps are often a lot simpler than iOS ones. I’ll put that on the roadmap - thanks!
20.
▲
by
gsundeep
2y ago
Sorry about that - can you try one more time? I just added some additional logging
21.
▲
by
gsundeep
2y ago
Spawn apps can use the accelerometer - thanks for pointing this out, I'll clarify the website. I pasted your prompt and got this: https://imgur.com/a/3Wg8AuK During the recording, I moved around around and stopped
22.
▲
by
gsundeep
2y ago
I totally agree! When you export your app in Spawn, it’s exported as an Xcode project and you can make code modifications from there
23.
▲
by
gsundeep
2y ago
I made some slight modifications to your prompt and got something working: Here's the prompt: https://i.imgur.com/lUjLTsd.png Plain text: https://pastebin.com/HTUjcy7M The two differences from your pro
24.
▲
by
gsundeep
2y ago
Thanks for giving it a try! I just took a look at your prompt and it looks well defined. I'll investigate the generated code and reply back here.
25.
▲
by
gsundeep
2y ago
That's a fair point, I can't say for certain that tools like Spawn will be able to build really complex software. However, I think there's a ton of software that could be built with current model capabilities that simply isn&
26.
▲
Show HN: Spawn – Build iOS Apps with English
(spawnapp.com)
41 points
by
gsundeep
2y ago
|
24 comments
27.
▲
by
gsundeep
6y ago
This looks awesome, any thoughts on making this automated? Here’s a similar product I ran into here a while ago that uses the info in the other meta tags (title, description) to automate the creation of these images: https://www.
28.
▲
by
gsundeep
6y ago
Here are some examples: If Stack Overflow used Thumblink: https://imgur.com/a/RVMRLxD If Substack used Thumblink: https://imgur.com/a/eOn4C0y
29.
▲
by
gsundeep
6y ago
Hi HN, I started working on Thumblink while trying to generate link thumbnails for a past project. Most websites don't configure link thumbnails, which usually results in ugly links. Thumblink handles the creation of thumbnails and con
30.
▲
Show HN: Thumblink – Add link thumbnails to your website with one line of HTML
(thumblink.com)
14 points
by
gsundeep
6y ago
|
2 comments
More ›